Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Out-of-bounds Read
CVE-2026-3949
Affects
libheif
| Versions
[0,]
M
Out-of-bounds Read
CVE-2026-3949
Affects
strukturag/libheif
| Versions
[0,]
M
Out-of-bounds Read
CVE-2026-3950
Affects
libheif
| Versions
[0,]
M
Out-of-bounds Read
CVE-2026-3950
Affects
strukturag/libheif
| Versions
[0,]
H
Out-of-bounds Read
CVE-2026-21888
Affects
emqx/nanomq
| Versions
[,0.24.7)
M
Race Condition within a Thread
CVE-2026-3904
Affects
glibc
| Versions
[2.35,2.37)
H
Expired Pointer Dereference
CVE-2026-2436
Affects
libsoup
| Versions
[,3.6.6)
C
Deserialization of Untrusted Data
CVE-2026-3059
Affects
sglang
| Versions
[0.5.5,]
H
Incorrect Authorization
CVE-2026-29194
Affects
github.com/gravitl/netmaker/controllers
| Versions
*
C
Deserialization of Untrusted Data
CVE-2026-3060
Affects
sglang
| Versions
[0,]
H
Permissive Cross-domain Policy with Untrusted Domains
Affects
mcp-memory-service
| Versions
[,10.25.1)
H
Use of Hard-coded Cryptographic Key
Affects
@frangoteam/fuxa
| Versions
<1.3.0
H
HTTP Header Injection
CVE-2025-70948
Affects
@perfood/couch-auth
| Versions
*
M
Timing Attack
CVE-2025-70949
Affects
@perfood/couch-auth
| Versions
*
H
Heap-based Buffer Overflow
CVE-2026-3931
Affects
chromium
| Versions
[,146.0.7680.71)
H
Out-of-bounds Read
CVE-2026-3926
Affects
v8/v8
| Versions
[,14.6.98-pgo)
H
Out-of-bounds Read
CVE-2026-3926
Affects
chromium
| Versions
[,146.0.7680.71)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30857
Affects
github.com/tencent/weknora/internal/types/interfaces
| Versions
<0.3.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30857
Affects
github.com/tencent/weknora/internal/application/service
| Versions
<0.3.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30857
Affects
github.com/tencent/weknora/internal/handler
| Versions
<0.3.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30857
Affects
github.com/tencent/weknora/internal/application/repository
| Versions
<0.3.0
H
Server-side Request Forgery (SSRF)
CVE-2026-30858
Affects
github.com/tencent/weknora/internal/agent/tools
| Versions
<0.3.0
H
Server-side Request Forgery (SSRF)
CVE-2026-30858
Affects
github.com/tencent/weknora/internal/utils
| Versions
<0.3.0
C
Incorrect Authorization
CVE-2026-30855
Affects
github.com/tencent/weknora/internal/handler
| Versions
<0.3.2
C
SQL Injection
CVE-2026-30860
Affects
github.com/tencent/weknora/internal/utils
| Versions
<0.2.12
H
Buffer Overflow
CVE-2026-27820
Affects
zlib
| Versions
<3.0.1
>=3.1.0, <3.1.2
>=3.2.0, <3.2.3
C
Improper Authentication
CVE-2026-29792
Affects
@feathersjs/authentication-oauth
| Versions
>=5.0.0 <5.0.42
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-30856
Affects
github.com/tencent/weknora/internal/agent/tools
| Versions
<0.3.0
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-30837
Affects
elysia
| Versions
<1.4.26
M
Directory Traversal
CVE-2026-3089
Affects
@actual-app/sync-server
| Versions
<26.3.0